Windows COM Flaw Lets Attackers Gain SYSTEM Privileges With a Malicious DLL

A newly detailed Windows privilege escalation flaw tracked as CVE-2026-66804 allowed a standard, low-privileged user to plant a malicious DLL and execute arbitrary code with full NT AUTHORITY\SYSTEM privileges, exploiting a lingering weakness in how Windows handles Component Object Model (COM) registrations. The bug, patched by Microsoft in its August Patch Tuesday, was reported by […]

This article has been indexed from Cyber Security News

Read the original article: